New Pornstar Interviews - [more]
Little Puck Interview

"I’m a woman of varied tastes. I can get off to a lot of different things. I enjoy switching it up."
All Forums > Tech Talk > Tech Talk Forum Page 59 > Thank you MS :(
AuthorPost
cubesnake
Senior Member


3858 Posts
10/02
Posted - Feb 11 2004 : 9:47AM
Hi,

Today i discovered a rather strange thing on my PC. After my last two updates from MS i can no longer have urls like this

http://username:password@www.blabla.com

all i get is wrong syntax

Username and pass are valid ! It looks like Ms "bend" something within the Internet Explorer

I guess the old saying "never change a running system" is true after all

Cube

GaySatyr
Senior Member

Half dirty ol' man; half horny ol' goat!
1684 Posts
10/00
Posted - Feb 11 2004 : 9:51AM
I realize that this is an inconvenience for you; however, it was to great a convenience for way too many hackers. Microsoft disabled this particular feature for a very good reason. There are other ways to store or automate password usage that are safer but the best way is to remember your passwords and enter them manually.

~ GaySatyr

Saki
At-Large

2087 Posts
11/99
Posted - Feb 11 2004 : 10:00AM
Here's why the update is important. An excerpt:
- Saki [faqs]
Saki
At-Large

2087 Posts
11/99
Posted - Feb 11 2004 : 10:09AM
So a hypothetical example of why the vulnerability needed to be fixed: a malicious web site or e-mail pretends it's a link to your favorite shopping site. You click on it. The URL looks valid. The attacker has replicated the site design down to the last detail. You decide to buy the product, enter your credit card details, and a few weeks later your bank calls you and tells you that they've noticed suspicious charges to your account.

Another: You receive an e-mail purporting to be from your bank or an online payment service. "Please log in and check your mailing address and ensure that it's correct." You click, you see that sure enough, it says "www.mybank.com." You enter your userid and password. Behind the scenes, the attacker records this info, redirects the logon to your real bank, and you're none the wiser, since your bank then displays your real account information.

That's the reason why ignoring Microsoft updates (when they get around to issuing them) is a Very Bad Thing.

- Saki [faqs]

skullman80
Member

Pittsburgh, Pa
23 Posts
1/04
Posted - Feb 15 2004 : 12:35PM
cubesnake,

If you want the fix to the fix MS put out...I can email it to you...

 
PL
Senior Member

God hates us all, you know it's true, God hates this place. - Slayer
1726 Posts
10/03
Posted - Feb 15 2004 : 3:16PM
Well that method works in Mozilla, Cube...better browser anyway
cubesnake
Senior Member

3858 Posts
10/02
Posted - Feb 15 2004 : 6:02PM
Hi,
thanks for your offer ... somebody else already helped me. And after reading on the Ms site i found the help myself :))

Cube




Jump To: